CVE-2018-1000657: Buffer Overflow
Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stable release 1.3.0 and later contains a Buffer Overflow vulnerability in std::collections::vecdeque::VecDeque::reserve() function that can result in Arbitrary code execution, but no proof-of-concept exploit is currently published.. This vulnerability appears to have been fixed in after commit fdfafb510b1a38f727e920dccbeeb638d39a8e60; stable release 1.22.0 and later.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-1000657?
CVE-2018-1000657 is a vulnerability in the Rust Programming Language Rust standard library that allows for arbitrary code execution.
What is the severity of CVE-2018-1000657?
CVE-2018-1000657 has a severity rating of 7.8, which is considered high.
How does CVE-2018-1000657 affect Rust?
CVE-2018-1000657 affects Rust programming language versions Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later, as well as stable release 1.3.0 and later.
How can I fix CVE-2018-1000657?
To fix CVE-2018-1000657, users should update their Rust programming language to a version that includes the necessary patch for the vulnerability.
Where can I find more information about CVE-2018-1000657?
You can find more information about CVE-2018-1000657 at the following references: [SecurityFocus](http://www.securityfocus.com/bid/105188), [GitHub Commit](https://github.com/rust-lang/rust/commit/f71b37bc28326e272a37b938e835d4f99113eec2), [GitHub Issue](https://github.com/rust-lang/rust/issues/44800).